First published: Thu Jun 08 2023(Updated: )
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter time at /goform/saveParentControlInfo.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac10 Firmware | =us_ac10v4.0si_v16.03.10.13_cn | |
Tenda AC10 | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-34566 is a vulnerability discovered in Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn firmware that allows for a stack overflow via the 'time' parameter in the /goform/saveParentControlInfo endpoint.
CVE-2023-34566 has a severity rating of 9.8, which is classified as critical.
Tenda AC10 v4 firmware version US_AC10V4.0si_V16.03.10.13_cn is affected by CVE-2023-34566.
CVE-2023-34566 can be exploited by sending a specially crafted request to the /goform/saveParentControlInfo endpoint with a malicious 'time' parameter, causing a stack overflow.
No, Tenda AC10 version 4.0 is not affected by CVE-2023-34566.